{"id":1433,"date":"2016-11-07T04:16:16","date_gmt":"2016-11-07T04:16:16","guid":{"rendered":"http:\/\/www.mtin.net\/blog\/?p=1433"},"modified":"2016-11-07T04:16:16","modified_gmt":"2016-11-07T04:16:16","slug":"dirty-cow-is-coming-update-your-nix-boxes","status":"publish","type":"post","link":"https:\/\/www.mtin.net\/blog\/dirty-cow-is-coming-update-your-nix-boxes\/","title":{"rendered":"Dirty Cow is Coming &#8211; Update your *nix boxes"},"content":{"rendered":"<p>Dirty COW (CVE-2016-5195) is a privilege escalation vulnerability in the Linux Kernel.<\/p>\n<p>This is an old vulnerability but appears to be something being exploited regularly. \u00a0In otherwords, keep your stuff up-to-date.<\/p>\n<p><a href=\"https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/VulnerabilityDetails\">https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/VulnerabilityDetails<\/a><\/p>\n<p><a href=\"https:\/\/dirtycow.ninja\/\">https:\/\/dirtycow.ninja\/<\/a><\/p>\n<p>Check to see if your systems are vulnerable:<br \/>\n<a href=\"https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/Check-if-your-system-is-vulnerable\">https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/Check-if-your-system-is-vulnerable<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Dirty COW (CVE-2016-5195) is a privilege escalation vulnerability in the Linux Kernel. This is an old vulnerability but appears to be something being exploited regularly. \u00a0In otherwords, keep your stuff up-to-date. https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/VulnerabilityDetails https:\/\/dirtycow.ninja\/ Check to see if your systems are vulnerable: https:\/\/github.com\/dirtycow\/dirtycow.github.io\/wiki\/Check-if-your-system-is-vulnerable<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false,"jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[63],"tags":[382,383,108,384],"jetpack_publicize_connections":[],"aioseo_notices":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p6VLMf-n7","jetpack-related-posts":[{"id":2230,"url":"https:\/\/www.mtin.net\/blog\/letsencrypt-and-mikrotik\/","url_meta":{"origin":1433,"position":0},"title":"LetsEncrypt and Mikrotik","author":"j2sw","date":"April 25, 2018","format":false,"excerpt":"Recently there has been some activity on integration with LetsEncrypt and Mikrotik.\u00a0 \u00a0WHile Mikrotik does not directly support Letsencrypt directly yet, you can make it work with this setup https:\/\/github.com\/gitpel\/letsencrypt-routeros \u00a0 \u00a0 From the GitHub Page: How it works: Dedicated Linux renew and push certificates to RouterOS \/ Mikrotik After\u2026","rel":"","context":"In &quot;Mikrotik&quot;","block_context":{"text":"Mikrotik","link":"https:\/\/www.mtin.net\/blog\/category\/mikrotik\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.mtin.net\/blog\/wp-content\/uploads\/2017\/09\/download.jpg?fit=236%2C213&ssl=1&resize=350%2C200","width":350,"height":200},"classes":[]},{"id":3427,"url":"https:\/\/www.mtin.net\/blog\/router-vulnerability-roundup-for-april-2019\/","url_meta":{"origin":1433,"position":1},"title":"Router Vulnerability roundup for April 2019","author":"j2sw","date":"April 25, 2019","format":false,"excerpt":"https:\/\/www.zdnet.com\/article\/cisco-warns-over-critical-router-flaw\/ Cisco has disclosed 29 new vulnerabilities and is warning customers using its ASR 9000 Series Aggregation Services Routers to install an update to address a critical flaw that can be exploited remotely without user credentials. https:\/\/securityintelligence.com\/buffer-overflow-vulnerability-in-tp-link-routers-can-allow-remote-attackers-to-take-control\/ Buffer Overflow Vulnerability in TP-Link Routers Can Allow Remote Attackers to Take Control","rel":"","context":"In &quot;cisco&quot;","block_context":{"text":"cisco","link":"https:\/\/www.mtin.net\/blog\/category\/cisco\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.mtin.net\/blog\/wp-content\/uploads\/2019\/04\/encryption-head-640x353-2.jpg?fit=640%2C353&ssl=1&resize=350%2C200","width":350,"height":200},"classes":[]},{"id":2885,"url":"https:\/\/www.mtin.net\/blog\/mikrotik-vulnerability\/","url_meta":{"origin":1433,"position":2},"title":"Mikrotik Vulnerability","author":"j2sw","date":"February 25, 2019","format":false,"excerpt":"On February 2 a CVE issue was published, describing a vulnerability, which allows to proxy a TCP\/UDP request through the routers Winbox port if it's open to the internet. A fix has already been released on February 11, 2019 in all RouterOS release channels. Please keep your device up to\u2026","rel":"","context":"In \"mikrotik\"","block_context":{"text":"mikrotik","link":"https:\/\/www.mtin.net\/blog\/tag\/mikrotik-2\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":1879,"url":"https:\/\/www.mtin.net\/blog\/vulnerability-in-wpa2\/","url_meta":{"origin":1433,"position":3},"title":"Vulnerability in WPA2","author":"j2sw","date":"October 16, 2017","format":false,"excerpt":"https:\/\/arstechnica.com\/information-technology\/2017\/10\/severe-flaw-in-wpa2-protocol-leaves-wi-fi-traffic-open-to-eavesdropping\/ An air of unease set into the security circles on Sunday as they prepared for the disclosure of high-severity vulnerabilities in the\u00a0Wi-Fi Protected Access II protocol\u00a0that make it possible for attackers to eavesdrop Wi-Fi traffic passing between computers and access points. The proof-of-concept exploit is called KRACK, short for\u2026","rel":"","context":"In &quot;Security&quot;","block_context":{"text":"Security","link":"https:\/\/www.mtin.net\/blog\/category\/security\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.mtin.net\/blog\/wp-content\/uploads\/2017\/09\/download.jpg?fit=236%2C213&ssl=1&resize=350%2C200","width":350,"height":200},"classes":[]},{"id":2544,"url":"https:\/\/www.mtin.net\/blog\/mikrotik-brute-force-backup\/","url_meta":{"origin":1433,"position":4},"title":"Mikrotik Brute Force Backup","author":"j2sw","date":"October 16, 2018","format":false,"excerpt":"Looking to recover a password from a Mikrotik\u00a0backup? Tools to encrypt\/decrypt and pack\/unpack RouterOS v6.13+ backup files. One of the reasons a strong password is important. https:\/\/github.com\/BigNerd95\/RouterOS-Backup-Tools\/blob\/master\/README.md","rel":"","context":"In &quot;Mikrotik&quot;","block_context":{"text":"Mikrotik","link":"https:\/\/www.mtin.net\/blog\/category\/mikrotik\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":1720,"url":"https:\/\/www.mtin.net\/blog\/quick-and-dirty-video-on-upgrading-epmp-firmware\/","url_meta":{"origin":1433,"position":5},"title":"Quick and dirty video on upgrading epmp firmware","author":"j2sw","date":"August 8, 2017","format":false,"excerpt":"Just a quick video on doing a manual upgrade of ePMP\u00a0firmware. \u00a0Both a GPS radio and a NON\u00a0GPS radio. Nothing fancy.","rel":"","context":"In &quot;Cambium&quot;","block_context":{"text":"Cambium","link":"https:\/\/www.mtin.net\/blog\/category\/cambium\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.mtin.net\/blog\/wp-content\/uploads\/2017\/08\/ePMP2000_Sector_Beam_angled_left45_tilt_400x300.jpg?fit=460%2C345&ssl=1&resize=350%2C200","width":350,"height":200},"classes":[]}],"jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/posts\/1433"}],"collection":[{"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/comments?post=1433"}],"version-history":[{"count":1,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/posts\/1433\/revisions"}],"predecessor-version":[{"id":1434,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/posts\/1433\/revisions\/1434"}],"wp:attachment":[{"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/media?parent=1433"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/categories?post=1433"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.mtin.net\/blog\/wp-json\/wp\/v2\/tags?post=1433"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}